There is 1 open security issue in bookworm.
1 issue left for the package maintainer to handle:
    
        - CVE-2024-22034:
            
                (needs triaging)
            
            Attackers could put the special files in .osc into the actual package sources (e.g. _apiurl). This allows the attacker to change the configuration of osc for the victim
        
 
You can find information about how to handle this issue in the security team's documentation.